Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-38924

do not use nettle directly, use gnutls

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • rhel-10.0.beta
    • CentOS Stream 10
    • chrony
    • None
    • chrony-4.5-4.el10
    • None
    • None
    • sst_cs_infra_services
    • ssg_core_services
    • 23
    • 1
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None

      Crypto team expects no packages other than gnutls to use nettle directly. Nettle comes with weaker API/ABI guarantees in RHEL; FIPS certifications treat nettle as part of gnutls FIPS module, but they do not cover nettle API.

      The RHEL-9 predecessor to this request was https://bugzilla.redhat.com/show_bug.cgi?id=1954483

      Hope this is just a matter of ./configure'ing it --without-nettle

            rhn-support-mlichvar Miroslav Lichvar
            asosedki@redhat.com Alexander Sosedkin
            Miroslav Lichvar Miroslav Lichvar
            Ondrej Mejzlik Ondrej Mejzlik
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

              Created:
              Updated: